Networking Forums

Networking Forums > Computer Networking > Windows Networking > Can't login to domain over VPN network

Reply
Thread Tools Display Modes

Can't login to domain over VPN network

 
 
Dave
Guest
Posts: n/a

 
      08-13-2004, 06:01 PM
The domain AAA is in Chicago in subnet 10.10.1.x, and is
linked via router-to-router VPN to an office in
Philadelphia with subnet 10.10.2.x. When I attempt to log
into the AAA domain from a Windows XP workstation in the
Philadelphia office, I get "The local policy of this
system does not permit you to login interactively". Since
the domain controller and other resources (e.g., Exchange)
are in Chicago, users in Philadelphia must be able to log
in. Can anyone tell me what the problem is, and/or how to
fix it?

FYI: the link between the offices appears to be stable; I
can use Terminal Services to access servers in Chicago.
 
Reply With Quote
 
 
 
 
netneg
Guest
Posts: n/a

 
      08-13-2004, 06:28 PM
It sounds like your using terminal services too. Make sure your TS group has
permissions to logon locally on the server.

"Dave" <(E-Mail Removed)> wrote in message
news:591d01c4815f$93979e80$(E-Mail Removed)...
> The domain AAA is in Chicago in subnet 10.10.1.x, and is
> linked via router-to-router VPN to an office in
> Philadelphia with subnet 10.10.2.x. When I attempt to log
> into the AAA domain from a Windows XP workstation in the
> Philadelphia office, I get "The local policy of this
> system does not permit you to login interactively". Since
> the domain controller and other resources (e.g., Exchange)
> are in Chicago, users in Philadelphia must be able to log
> in. Can anyone tell me what the problem is, and/or how to
> fix it?
>
> FYI: the link between the offices appears to be stable; I
> can use Terminal Services to access servers in Chicago.



 
Reply With Quote
 
Michael Giorgio - MS MVP
Guest
Posts: n/a

 
      08-13-2004, 06:28 PM
That particular error is related to the logon locally
user right. The AAA domain account must have
permissions to logon locally to the XP machine in
Philadelphia.


"Dave" <(E-Mail Removed)> wrote in message news:
> The domain AAA is in Chicago in subnet 10.10.1.x, and is
> linked via router-to-router VPN to an office in
> Philadelphia with subnet 10.10.2.x. When I attempt to log
> into the AAA domain from a Windows XP workstation in the
> Philadelphia office, I get "The local policy of this
> system does not permit you to login interactively". Since
> the domain controller and other resources (e.g., Exchange)
> are in Chicago, users in Philadelphia must be able to log
> in. Can anyone tell me what the problem is, and/or how to
> fix it?
>
> FYI: the link between the offices appears to be stable; I
> can use Terminal Services to access servers in Chicago.



 
Reply With Quote
 
bu
Guest
Posts: n/a

 
      08-13-2004, 06:31 PM
Are you sure it is a router-to-router vpn? That error usually happens when
the username being used to authenticate is not given dial-in rights on the
Windows server....


"Dave" <(E-Mail Removed)> wrote in message
news:591d01c4815f$93979e80$(E-Mail Removed)...
> The domain AAA is in Chicago in subnet 10.10.1.x, and is
> linked via router-to-router VPN to an office in
> Philadelphia with subnet 10.10.2.x. When I attempt to log
> into the AAA domain from a Windows XP workstation in the
> Philadelphia office, I get "The local policy of this
> system does not permit you to login interactively". Since
> the domain controller and other resources (e.g., Exchange)
> are in Chicago, users in Philadelphia must be able to log
> in. Can anyone tell me what the problem is, and/or how to
> fix it?
>
> FYI: the link between the offices appears to be stable; I
> can use Terminal Services to access servers in Chicago.



 
Reply With Quote
 
Guest
Posts: n/a

 
      08-13-2004, 06:51 PM
I'm pretty new at this - how do I set that login locally
user right? Is it set on the server or on the XP
machine? Thanks in advance!

Dave

>-----Original Message-----
>That particular error is related to the logon locally
>user right. The AAA domain account must have
>permissions to logon locally to the XP machine in
>Philadelphia.
>
>
>"Dave" <(E-Mail Removed)> wrote in message news:
>> The domain AAA is in Chicago in subnet 10.10.1.x, and is
>> linked via router-to-router VPN to an office in
>> Philadelphia with subnet 10.10.2.x. When I attempt to

log
>> into the AAA domain from a Windows XP workstation in the
>> Philadelphia office, I get "The local policy of this
>> system does not permit you to login interactively".

Since
>> the domain controller and other resources (e.g.,

Exchange)
>> are in Chicago, users in Philadelphia must be able to

log
>> in. Can anyone tell me what the problem is, and/or how

to
>> fix it?
>>
>> FYI: the link between the offices appears to be stable;

I
>> can use Terminal Services to access servers in Chicago.

>
>
>.
>

 
Reply With Quote
 
Michael Giorgio - MS MVP
Guest
Posts: n/a

 
      08-13-2004, 07:00 PM
Description: The user attempting to log on does not have the "logon
locally" permission available under Security Settings\Local
Policies\User Rights Assignment\Log On Locally. Modify the appropriate
Group Policy Object in your environment to grant the user or group this
permission.


<(E-Mail Removed)> wrote in message news:
> I'm pretty new at this - how do I set that login locally
> user right? Is it set on the server or on the XP
> machine? Thanks in advance!



 
Reply With Quote
 
Phillip Windell
Guest
Posts: n/a

 
      08-16-2004, 03:50 PM
If it is a Domain Controller and you are dealing specifically with that,
then it is found at:
Administrative Tools --> Default Domain Controller Security Settings
If you want the focus to be "Domain wide"
Administrative Tools --> Default Domain Security Settings
If it is a Member Server and you are dealing specifically with that, then it
is found at:
Administrative Tools --> Local Security Policies

In any case once you are in the right MMC, then it is listed under "Local
Policies --> User Rights Assignments--> Allow Log on Locally".


--

Phillip Windell [MCP, MVP, CCNA]
www.wandtv.com


<(E-Mail Removed)> wrote in message
news:5f1801c48166$8b2e4850$(E-Mail Removed)...
> I'm pretty new at this - how do I set that login locally
> user right? Is it set on the server or on the XP
> machine? Thanks in advance!
>
> Dave
>
> >-----Original Message-----
> >That particular error is related to the logon locally
> >user right. The AAA domain account must have
> >permissions to logon locally to the XP machine in
> >Philadelphia.
> >
> >
> >"Dave" <(E-Mail Removed)> wrote in message news:
> >> The domain AAA is in Chicago in subnet 10.10.1.x, and is
> >> linked via router-to-router VPN to an office in
> >> Philadelphia with subnet 10.10.2.x. When I attempt to

> log
> >> into the AAA domain from a Windows XP workstation in the
> >> Philadelphia office, I get "The local policy of this
> >> system does not permit you to login interactively".

> Since
> >> the domain controller and other resources (e.g.,

> Exchange)
> >> are in Chicago, users in Philadelphia must be able to

> log
> >> in. Can anyone tell me what the problem is, and/or how

> to
> >> fix it?
> >>
> >> FYI: the link between the offices appears to be stable;

> I
> >> can use Terminal Services to access servers in Chicago.

> >
> >
> >.
> >



 
Reply With Quote
 
 
 
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are Off


Similar Threads
Thread Thread Starter Forum Replies Last Post
Domain login with VPN jacksors Windows Networking 2 10-11-2006 06:11 PM
Domain Login over VPN. Don Doerr Windows Networking 4 10-05-2005 02:07 AM
How do I login to domain with USB network adapter? Harold Wireless Networks 3 03-07-2005 09:52 PM
Sometimes users can't login after changing password on domain at first login edg Windows Networking 0 11-11-2004 11:30 PM
Can't login to domain Graeme Wireless Networks 0 10-19-2004 03:01 PM



1 2 3 4 5 6 7 8 9 10 11